CVE-2014-8627: Polarssl

Medium severity, CVSS 5.0. EPSS: 2.1% chance of exploitation in the next 30 days.

PolarSSL 1.3.8 does not properly negotiate the signature algorithm to use, which allows remote attackers to conduct downgrade attacks via unspecified vectors.

Affected products

Published 2014-11-24. Last modified 2026-06-17.